共 2 条
An Analysis of Assessment Approaches and Maturity Scales used for Evaluation of Information Security and Cybersecurity User Awareness and Training Programs: A Scoping Review
被引:3
|作者:
Muronga, Khangwelo
[1
,2
]
Herselman, Marlein
[1
,3
]
Botha, Adele
[1
,3
]
Da Veiga, Adele
[1
]
机构:
[1] UNISA, Coll Sci Engn & Technol, Sch Comp, Florida Campus, Johannesburg, South Africa
[2] CSIR, Smart Mobil, City Of Tshwane, South Africa
[3] CSIR, Next Generat Enterprises & Inst, Pretoria, South Africa
来源:
关键词:
information security;
cybersecurity;
user awareness;
training programs;
assessment programs;
POLICY COMPLIANCE;
PROTECTION;
BEHAVIOR;
DEFINITION;
D O I:
10.1109/nextcomp.2019.8883535
中图分类号:
TP39 [计算机的应用];
学科分类号:
081203 ;
0835 ;
摘要:
This study aimed to ascertain the types of approaches that are applied in the assessments of information security and cybersecurity user awareness and training programs. The study focused on achieving two objectives. The first objective focused on to find out what measurements are used in the assessment of the effectiveness of information security and cybersecurity user awareness and training programs. The second objective focused on studies that made use of maturity models to measure the progress of these programs. A Scoping Literature Review process was followed to achieve these objectives. The study found that there is a gap in current literature with regards to the assessment of these programs, as only five papers and two maturity models focused on the assessment of these programs. The study further recommends that more studies be conducted in the assessment of these programs, as most researchers are encouraging the use of the programs in the fight against cyber-attacks.
引用
收藏
页数:6
相关论文